惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

MongoDB | Blog
MongoDB | Blog
V
V2EX
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
有赞技术团队
有赞技术团队
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
罗磊的独立博客
月光博客
月光博客
爱范儿
爱范儿
D
Docker
U
Unit 42
P
Proofpoint News Feed
I
InfoQ
腾讯CDC
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
L
LangChain Blog
V
Visual Studio Blog
IT之家
IT之家
Vercel News
Vercel News
G
Google Developers Blog
M
MIT News - Artificial intelligence
美团技术团队
The GitHub Blog
The GitHub Blog
阮一峰的网络日志
阮一峰的网络日志
MyScale Blog
MyScale Blog

www.infosecurity-magazine.com

Just Three Ransomware Gangs Accounted for 40% of Attacks Last Month Google Chrome Rolls Out Protection Against Infostealers Targeting Session Cookies STX RAT Targets Finance Sector With Advanced Stealth Tactics Bitcoin Depot Reports $3.6m Crypto Theft After System Breach Atomic Stealer MacOS ClickFix Attack Bypasses Apple Security Warnings Middle East Hack-for-Hire Operation Traced to South Asian Cyber Espionage Group Governance Gaps Emerge as AI Agents Drive 76% Increase in NHIs Google Warns of New Threat Group Targeting BPOs and Helpdesks Google API Keys Quietly Gain Access to Gemini on Android Devices Critical Vulnerability in Ninja Forms Exposes WordPress Sites Anthropic Launches Project Glasswing to Use AI to Find and Fix Critical Software Vulnerabilities US Thwarts DNS Hijacking Network Controlled by Russian APT28 Hackers Claude Discovers Apache ActiveMQ Bug Hidden for 13 Years Iran‑Backed Threat Actors Hit US CNI Providers via Internet‑Facing OT Assets Russian APT28 Hackers Hijack Routers to Steal Credentials, UK Security Agency Warns GPU Rowhammer Attack Enables Privilege Escalation and Full System Compromise GrafanaGhost Exploit Bypasses AI Guardrails for Silent Data Exfiltration Over $17bn Lost to Cyber Fraud in the Last Year, Warns FBI Storm-1175 Exploits Flaws in High-Velocity Medusa Attacks Fortinet Releases Emergency Patch After FortiClient EMS Bug Is Exploited New Phishing Platform Used in Credential Theft Campaigns Against C-Suite Execs New 'Storm' Infostealer Remotely Decrypts Stolen Credentials NCSC Issues Security Alert Over Hackers Targeting WhatsApp and Signal Accounts Apple Expands iOS 18 Security Updates Amid DarkSword Threat Researchers Observe Sub-One-Hour Ransomware Attacks GitHub Used as Covert Channel in Multi-Stage Malware Campaign Most CNI Firms Face Up to £5m in Downtime from OT Attacks Google Introduces Android Dev Verification Amid Openness Debate New Venom Stealer MaaS Platform Automates Continuous Data Theft Chinese Hackers Target European Governments in Espionage Campaigns
Cyber-Attacks on UK Firms Increase at Four Times Global Rate
2026-03-11 · via www.infosecurity-magazine.com

Photo of Phil Muncaster

UK organizations were hit by far fewer cyber-attacks in February than the global average, but the year-on-year (YoY) increase was nearly four times the growth rate worldwide, according to Check Point.

The security vendor’s February 2026 Global Threat Intelligence report revealed that it blocked an average of 2086 cyber-attacks per organization per week globally, a 9.8% year-on-year (YoY) increase. In the UK, the figure was only 1504 per week, but that represented a 36% YoY increase.

Education, energy & utilities, government, healthcare and financial services were among the most frequently targeted sectors in the UK.

Ian Porteous, regional director for security engineering (UK&I) at Check Point, told Infosecurity that it’s hard to pinpoint a specific driver of the spike in UK attacks.

“We have seen a general trend in recent years of regression towards the mean in the number of attacks. In the past Europe and North America were much lower compared to other regions and have since ‘closed the gap’ to some extent),” he said.

“However, we do see a variation also inside these regions, and it might be impacted in some cases by short term and large-scale campaigns."

Read more on UK cyber threats: UK Executives Warn They May Not Survive a Major Cyber-Attack, Vodafone Survey Finds.

Ransomware continues to be among the most acute threats facing UK and global organizations. While most corporate victims (51%) were from the US last month, the UK (3%) came in third, behind Canada (6%).

The report pointed to 49 discrete ransomware groups operating last month, with Qilin (15%), Clop (13%), and The Gentlemen (11%) accounting for a plurality of victims.

Overall, the UK fared far better in terms of attack volumes versus the global average and also regionally, compared to Latin America (3123), APAC followed (3040) and Africa (2993).

GenAI Drives Data Exposure Risks

Check Point also revealed that widespread generative AI (GenAI) use in corporate environments continues to fuel the risk of unintended data leaks.

Globally, one in every 31 GenAI prompts posed a high risk of data exposure last month, impacting 88% of organizations that use these tools regularly, it claimed. A further 16% of prompts contained potentially sensitive information like credentials, customer data and IP.

The security vendor claimed that, because organizations used an average of 11 different GenAI tools in February, it’s likely that many of them were not actively managed by IT or governed by dedicated policies.

With the average user generating 62 prompts per month, there’s a growing likelihood of something going wrong.

Harmonic Security research from last year found that one in 12 British and American employees use Chinese generative AI (GenAI) tools, potentially compounding these security risks.

Data inputted into these models via prompts may be shared with the authorities in Beijing. And tools like DeepSeek have been found to be vulnerable to jailbreaking, hallucinations, and generating insecure code.

Check Point UK & Ireland regional director, Mark Weir, said that despite a sharp uptick in attacks on UK organizations, cyber risk should be viewed as a persistent threat.

“Even when ransomware activity fluctuates, attackers maintain constant pressure across industries and regions,” he argued. “At the same time, unmanaged GenAI usage continues to introduce new data exposure risks. Prevention‑first, real‑time protection powered by AI remains the most effective way to stop attacks before they cause operational or financial damage.”